There are four key log files can help you quickly and easily diagnose mail flow problems with Protector; SMTP, filters, messages, and SMAIL.? All these can be accessed by registering on the console on the device with the root account.
SMTP/etc/XMail/logs/SMTP-YYYYMMDDHH00
This records all incoming mail to the server, both destined to the Internet and internal networks.? For each message, you should see a recovery and RCPT.? If you don't see a message in this record, he never received.? Some of the IP filter also displays errors in this log if a message was blocked by our IP filter.? If you don't see a message in this log file, Protector was never received.
FILTERS
/etc/XMail/logs/filters-YYYYMMDDHH00
This register our filter's IP layer including the verification of the recipient.? Please note that to enable the recipient verification, all lines of messages displays words of recipient verification, but that does not mean that they were blocked for it, it only checks.
MESSAGES
Messages
This record displays all warnings in email security, but also shows the messages that are discussed.? If a message was blocked by one of our content filters, it is shown here in a manner that rule and module analysis compared to e-mail if a reply to the message and the status of the action of final message was applied, measures generally = 1.? If a message does not display a rule and the analysis of the registration module and has taken an action = 0, this indicates that the message has passed all the controls and be delivered in your mail box.
SMAIL
/etc/XMail/logs/Smail-YYYYMMDDHH00
This log shows all the mail that has been or is intended to deliver the external mail server and the internal.? If the message is delivered to the Internet is displayed "smtp", "rlys" message delivered to internal.? If you see any of these, you know that the message is now on his next jump, not Protector.
EXAMPLE OF INPUT OF E-MAIL:
LPforMS: ~ # tail /etc/xmail/logs/smtp-201107290900
"swg.usma.ibm.com" "swg.usma.ibm.com" "127.0.0.1" "2011-07-29 09: 12: 02" "mail.ibm.com" "swg.usma.ibm.com" "joey@example.com" "samanthadaryn@swg.usma.ibm.com" "11072913-8336-0000-0000-0000001200EE" "RCPT = OK" "" "0" ""
"swg.usma.ibm.com" "swg.usma.ibm.com" "127.0.0.1" "2011-07-29 09: 12: 17" "mail.ibm.com" "swg.usma.ibm.com" "joey@example.com" "samanthadaryn@swg.usma.ibm.com" "11072913-8336-0000-0000-0000001200EE" "RECV = OK" "" "64" ""
LPforMS: ~ # tail /etc/xmail/logs/filters-201107290900
"joey@example.com" "samanthadaryn@swg.usma.ibm.com" "127.0.0.1" "127.0.0.1" "2011-07-29 09: 12: 02" "post-rcpt" "" "11072913-8336-0000-0000-0000001200EE" "0" "0" "check recipient;"
LPforMS: ~ # tail Messages
"" 29 On jul 09: 12: 23 LPforMS pvmail [1444]: id = name of MS = time MSM_MailProcessed = "2011-7-29 9: 12: 23" fw = LPforMS pri = 6 issueid = 6000031 msg = "Mail processing" msgid = 11072913-8336-0000-0000-0000001200EE sender="joey@example.com" recipient="samanthadaryn@swg.usma.ibm.com" direction = inbound size = 709 attachmentcount = 0 src = 127.0.0.1 ActionTaken = 0
LPforMS: ~ # tail /etc/xmail/logs/smail-201107290900
"swg.usma.ibm.com" "1311945143834.b34d3ba0.6dd.12c.LPforMS" "11072913-8336-0000-0000-0000001200EE" "joey@example.com" "samanthadaryn@swg.usma.ibm.com" "rlys""LPDominoSvr.swg.usma.ibm.com""2011-07-29 09: 12: 24" "Message" accepted for delivery
For a complete list of SMTP errors, refer to this article. https://www-304.IBM.com/support/docview.wss?uid=swg21437369
View the original article here